CVE-2016-0642

8 documents7 sources
Severity
4.7MEDIUM
EPSS
0.4%
top 40.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 21
Latest updateMay 14

Description

Unspecified vulnerability in Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 and earlier allows local users to affect integrity and availability via vectors related to Federated.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:HExploitability: 0.5 | Impact: 4.2

Affected Packages17 packages

NVDoracle/mysql5.5.05.5.48+2
Ubuntumysql-5.5< 5.5.49-0ubuntu0.14.04.1
Ubuntumysql-5.6< 5.6.30-0ubuntu0.14.04.1
Ubuntumysql-5.7< 5.7.12-0ubuntu1
NVDmariadb/mariadb5.5.05.5.47+2

Also affects: Debian Linux 8.0, Ubuntu Linux 12.04, 14.04, 15.10, 16.04, Enterprise Linux 7.2, 7.3, 7.4, 7.5, 7.6, 7.7

Patches

🔴Vulnerability Details

3
GHSA
GHSA-px8r-9h4w-jc93: Unspecified vulnerability in Oracle MySQL 52022-05-14
CVEList
CVE-2016-0642: Unspecified vulnerability in Oracle MySQL 52016-04-21
OSV
CVE-2016-0642: Unspecified vulnerability in Oracle MySQL 52016-04-20

📋Vendor Advisories

3
Ubuntu
MySQL vulnerabilities2016-04-25
Red Hat
mysql: unspecified vulnerability in subcomponent: Server: Federated (CPU April 2016)2016-04-21
Ubuntu
MySQL vulnerabilities2016-04-21

💬Community

1
Bugzilla
CVE-2016-0642 mysql: unspecified vulnerability in subcomponent: Server: Federated (CPU April 2016)2016-04-21
CVE-2016-0642 (MEDIUM CVSS 4.7) | Unspecified vulnerability in Oracle | cvebase.io